Lucene search

K
virtuozzoVirtuozzoVZA-2024-031
HistoryJul 17, 2024 - 12:00 a.m.

Virtuozzo Hybrid Infrastructure 6.2 (6.2.0-142)

2024-07-1700:00:00
docs.virtuozzo.com
5
virtuozzo hybrid infrastructure
update
security
stability
vulnerability fixes
hypervisor
neutron service
storage space
networks
firewall rules
load balancer
s3 user authentication

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

7.6

Confidence

Low

EPSS

0

Percentile

13.8%

This update provides security and stability fixes.
Vulnerability id: VSTOR-75009, VSTOR-76816, VSTOR-87057
Stability fixes for the hypervisor.

Vulnerability id: VSTOR-87588
Fixed an issue with storage space calculation for the “Other” category in the “Logical space” chart in the admin panel.

Vulnerability id: VSTOR-87977
A stability fix for the Neutron service.

Vulnerability id: VSTOR-88832
A security fix for networks.

Vulnerability id: VSTOR-88987
Fixed an issue with missing firewall rules for certain ports.

Vulnerability id: VSTOR-89010
A security fix for CVE-2024-4467.

Vulnerability id: VSTOR-89055
Load balancers are not displayed in the admin panel if one of them is in the error state.

Vulnerability id: VSTOR-89106
Fixed an issue with S3 user authentication via the Amazon Signature Version 4 algorithm.

Vulnerability id: VSTOR-89156
A security fix for CVE-2024-6409.

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

7.6

Confidence

Low

EPSS

0

Percentile

13.8%